Catalyst 9800 Embedded Wireless Controller

Vendor:

First CVE: Sep 29, 2017 · Active for 8 years

15
Total CVEs
More Total CVEs than 92% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 74% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 42% of tracked products
13.3%
KEV Rate
Higher KEV Rate than 98% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Catalyst 9800 Embedded Wireless Controller over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 29, 2017
8 years ago
Most Recent CVE
Sep 27, 2023
1,033 days ago

CVE Severity & Scoring

Catalyst 9800 Embedded Wireless Controller15 CVEs
All CVEs352,713 CVEs
MediumHighCritical
Attack Vector
Local1 (6.7%)
Network10 (66.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network4 (26.7%)
Attack Complexity
Low13 (86.7%)
High2 (13.3%)
Unknown0 (0.0%)
User Interaction
None15 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low3 (20.0%)
High0 (0.0%)
None12 (80.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (15 CVEs).

15 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthenticated, remote attacker to cause a
Mar 28, 20187.566YESNO
A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause a d
Sep 29, 20177.565YESNO
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers
Sep 23, 20219.832NONO
A vulnerability in the processing of malformed Common Industrial Protocol (CIP) packets that are sent to Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated
Sep 30, 20227.525NONO
A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected de
Mar 23, 20237.824NONO
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Con
Sep 23, 20217.524NONO
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Con
Sep 23, 20217.524NONO
A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, adjacent
Sep 23, 20217.424NONO
A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPWAP) protocol of Cisco IOS XE Software for Wireless LAN Contr
Mar 23, 20236.823NONO
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Con
Sep 24, 20206.521NONO

Exploit Exposure

Signals from CVEs in this product scope (15 CVEs).

CISA KEV
2 CVEs
13.3% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (15 CVEs).

Media Mentions

Signals from CVEs in this product scope (15 CVEs).

Top CNAs Publishing CVEs For Catalyst 9800 Embedded Wireless Controller

Top CWEs

Versions

No cataloged versions.